{
  "Name": "TrendAI Vision One(CCF)",
  "Author": "TrendAI",
  "Logo": "<img src=\"https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Logos/TrendAI_Logo.svg\" width=\"75px\" height=\"75px\">",
  "Description": "The [TrendAI Vision One](https://www.trendmicro.com/en_us/business/products/detection-response/xdr.html) solution for Microsoft Sentinel provides two data connectors that ingest security data from the TrendAI Vision One platform using the Codeless Connector Framework (CCF):\n\n- **Workbench Alerts** – Security incidents, investigations, and alerts with IOC extraction\n- **OAT Detections** – MITRE ATT&CK mapped detections with full process trees\n\nThis solution also includes KQL parser functions, an analytic rule, and a workbook dashboard for Workbench Alerts.",
  "Workbooks": [
    "Workbooks/TrendAIVisionOneWorkbenchOverview.json"
  ],
  "Analytic Rules": [
    "Analytic Rules/TrendAIVisionOneWorkbenchIncident.yaml"
  ],
  "Parsers": [
    "Parsers/TrendAIWorkbench_Complete.yaml",
    "Parsers/TrendAIOAT_Complete.yaml"
  ],
  "Data Connectors": [
    "Data Connectors/TrendAIVisionOneWorkbench_ccp/TrendAIVisionOneWorkbench_ConnectorDefinition.json",
    "Data Connectors/TrendAIVisionOneOAT_ccp/TrendAIVisionOneOAT_ConnectorDefinition.json"
  ],
  "Metadata": "SolutionMetadata.json",
  "BasePath": "https://raw.githubusercontent.com/Azure/Azure-Sentinel/master/Solutions/TrendAI%20Vision%20One(CCF)",
  "Version": "3.0.1",
  "TemplateSpec": true,
  "Is1PConnector": false
}
